A vulnerability has been identified in PT-G503 Series firmware versions prior to v5.2, where the Secure attribute for sensitive cookies in HTTPS sessions is not set, which could cause the cookie to be transmitted in plaintext over an HTTP session. The vulnerability may lead to security risks, potentially exposing user session data to unauthorized access and manipulation.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: Moxa

Published: 2023-11-02T16:11:13.854Z

Updated: 2024-09-05T14:35:38.588Z

Reserved: 2023-09-18T05:24:28.222Z

Link: CVE-2023-5035

cve-icon Vulnrichment

Updated: 2024-08-02T07:44:53.722Z

cve-icon NVD

Status : Analyzed

Published: 2023-11-02T17:15:11.677

Modified: 2023-11-09T19:54:28.697

Link: CVE-2023-5035

cve-icon Redhat

No data.